CVE Database
/

CVE-2009-0945

Back to search

CVE-2009-0945

Published: May 13, 2009

Modified: Aug 7, 2024

PUBLISHED

Description

Array index error in the insertItemBefore method in WebKit, as used in Apple Safari before 3.2.3 and 4 Public Beta, iPhone OS 1.0 through 2.2.1, iPhone OS for iPod touch 1.1 through 2.2.1, Google Chrome Stable before 1.0.154.65, and possibly other products allows remote attackers to execute arbitrary code via a document with a SVGPathList data structure containing a negative index in the (1) SVGTransformList, (2) SVGStringList, (3) SVGNumberList, (4) SVGPathSegList, (5) SVGPointList, or (6) SVGLengthList SVGList object, which triggers memory corruption.

VendorProductVersions

n/a

n/a

affected
n/a

References

USN-822-1
vendor-advisory
x_refsource_UBUNTU
35805
third-party-advisory
x_refsource_SECUNIA
43068
third-party-advisory
x_refsource_SECUNIA
FEDORA-2009-8039
vendor-advisory
x_refsource_FEDORA
ADV-2009-1621
vdb-entry
x_refsource_VUPEN
ADV-2011-0212
vdb-entry
x_refsource_VUPEN
1022207
vdb-entry
x_refsource_SECTRACK
RHSA-2009:1130
vendor-advisory
x_refsource_REDHAT
ADV-2009-1298
vdb-entry
x_refsource_VUPEN
35576
third-party-advisory
x_refsource_SECUNIA
35074
third-party-advisory
x_refsource_SECUNIA
37746
third-party-advisory
x_refsource_SECUNIA
36790
third-party-advisory
x_refsource_SECUNIA
APPLE-SA-2009-06-17-1
vendor-advisory
x_refsource_APPLE
APPLE-SA-2009-05-12
vendor-advisory
x_refsource_APPLE
35056
third-party-advisory
x_refsource_SECUNIA
34924
vdb-entry
x_refsource_BID
36461
third-party-advisory
x_refsource_SECUNIA
safari-webkit-svglist-bo(50477)
vdb-entry
x_refsource_XF
APPLE-SA-2009-05-12
vendor-advisory
x_refsource_APPLE
USN-823-1
vendor-advisory
x_refsource_UBUNTU
DSA-1950
vendor-advisory
x_refsource_DEBIAN
SUSE-SR:2011:002
vendor-advisory
x_refsource_SUSE
36062
third-party-advisory
x_refsource_SECUNIA
USN-857-1
vendor-advisory
x_refsource_UBUNTU
APPLE-SA-2009-05-12
vendor-advisory
x_refsource_APPLE
TA09-133A
third-party-advisory
x_refsource_CERT
oval:org.mitre.oval:def:11584
vdb-entry
signature
x_refsource_OVAL
ADV-2009-1297
vdb-entry
x_refsource_VUPEN
35095
third-party-advisory
x_refsource_SECUNIA
FEDORA-2009-8049
vendor-advisory
x_refsource_FEDORA
FEDORA-2009-6166
vendor-advisory
x_refsource_FEDORA
USN-836-1
vendor-advisory
x_refsource_UBUNTU
ADV-2009-1321
vdb-entry
x_refsource_VUPEN

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now
CVE-2009-0945 - Security Vulnerability | QwikSec